Movatterモバイル変換


[0]ホーム

URL:


US20050229011A1 - Reliability platform configuration measurement, authentication, attestation and disclosure - Google Patents

Reliability platform configuration measurement, authentication, attestation and disclosure
Download PDF

Info

Publication number
US20050229011A1
US20050229011A1US11/100,969US10096905AUS2005229011A1US 20050229011 A1US20050229011 A1US 20050229011A1US 10096905 AUS10096905 AUS 10096905AUS 2005229011 A1US2005229011 A1US 2005229011A1
Authority
US
United States
Prior art keywords
register
platform configuration
content
value
platform
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
US11/100,969
Other versions
US7752465B2 (en
Inventor
Timothy Ebringer
Sachiko Yoshihama
Seiji Munetoh
Hiroshi Maruyama
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
International Business Machines Corp
Original Assignee
International Business Machines Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by International Business Machines CorpfiledCriticalInternational Business Machines Corp
Assigned to INTERNATIONAL BUSINESS MACHINES CORPORATIONreassignmentINTERNATIONAL BUSINESS MACHINES CORPORATIONASSIGNMENT OF ASSIGNORS INTEREST (SEE DOCUMENT FOR DETAILS).Assignors: MARUYAMA, HIROSHI, MUNETOH, SEIJI, YOSHIHAMA, SACHIKO, EBRINGER, TIMOTHY D.
Publication of US20050229011A1publicationCriticalpatent/US20050229011A1/en
Priority to US12/165,908priorityCriticalpatent/US7930563B2/en
Application grantedgrantedCritical
Publication of US7752465B2publicationCriticalpatent/US7752465B2/en
Expired - Fee Relatedlegal-statusCriticalCurrent
Adjusted expirationlegal-statusCritical

Links

Images

Classifications

Definitions

Landscapes

Abstract

A platform configuration measurement device including: a configuration register; means for executing extension processing in which a predetermined operation is performed on a content of the configuration register by using a given additional value, a hash value is obtained by applying a predetermined hash function to a value obtained by the predetermined operation, and the hash value is set for a new content of the configuration register; and measurement extension means for obtaining measured values, corresponding to predetermined components constituting a platform, by sequentially making predetermined measurement on the predetermined components, and for allowing the means for executing extension processing to execute the extension processing using the measured values as the additional values, random extension means is provided for allowing the means for executing extension processing to execute the extension processing using a random value as the additional value.

Description

Claims (21)

1. A platform configuration measurement device which comprises:
a register;
means for executing extension processing in which a predetermined operation is performed on a content of the register by using a given additional value, a hash value is obtained by applying a predetermined hash function to a value obtained by the predetermined operation, and the hash value is set for a new content of the register;
measurement extension means for obtaining measured values, corresponding to predetermined components constituting a platform, by sequentially making predetermined measurement on the predetermined components, and for allowing the means for executing extension processing to execute the extension processing using the measured values as the additional values; and
random extension means for allowing the means for executing extension processing to execute the extension processing using a random value as the additional value.
US11/100,9692004-04-092005-04-07Reliability platform configuration measurement, authentication, attestation and disclosureExpired - Fee RelatedUS7752465B2 (en)

Priority Applications (1)

Application NumberPriority DateFiling DateTitle
US12/165,908US7930563B2 (en)2004-04-092008-07-01Reliability platform configuration measurement, authentication, attestation and disclosure

Applications Claiming Priority (2)

Application NumberPriority DateFiling DateTitle
JP2004-1150032004-04-09
JP2004115003AJP4144880B2 (en)2004-04-092004-04-09 Platform configuration measurement device, program and method, platform configuration authentication device, program and method, platform configuration certification device, program and method, and platform configuration disclosure device, program and method

Related Child Applications (1)

Application NumberTitlePriority DateFiling Date
US12/165,908ContinuationUS7930563B2 (en)2004-04-092008-07-01Reliability platform configuration measurement, authentication, attestation and disclosure

Publications (2)

Publication NumberPublication Date
US20050229011A1true US20050229011A1 (en)2005-10-13
US7752465B2 US7752465B2 (en)2010-07-06

Family

ID=35061917

Family Applications (2)

Application NumberTitlePriority DateFiling Date
US11/100,969Expired - Fee RelatedUS7752465B2 (en)2004-04-092005-04-07Reliability platform configuration measurement, authentication, attestation and disclosure
US12/165,908Expired - Fee RelatedUS7930563B2 (en)2004-04-092008-07-01Reliability platform configuration measurement, authentication, attestation and disclosure

Family Applications After (1)

Application NumberTitlePriority DateFiling Date
US12/165,908Expired - Fee RelatedUS7930563B2 (en)2004-04-092008-07-01Reliability platform configuration measurement, authentication, attestation and disclosure

Country Status (2)

CountryLink
US (2)US7752465B2 (en)
JP (1)JP4144880B2 (en)

Cited By (15)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US20020099955A1 (en)*2001-01-232002-07-25Vidius Inc.Method for securing digital content
US20070226505A1 (en)*2006-03-272007-09-27Brickell Ernie FMethod of using signatures for measurement in a trusted computing environment
WO2008026086A3 (en)*2006-08-312008-05-08IbmAttestation of computing platforms
US20080301457A1 (en)*2007-05-302008-12-04Hitachi, Ltd.Authentication system and apparatus
US20090013181A1 (en)*2007-07-032009-01-08Electronics & Telecommunications Research InstituteMethod and attestation system for preventing attestation replay attack
US20090046745A1 (en)*2007-08-162009-02-19Electronics & Telecommunications Research InstituteApparatus for transmitting and receiving data with various data capacities at high speed
US20090144719A1 (en)*2007-11-292009-06-04Jan PazdzioraUsing system fingerprints to accelerate package dependency resolution
US20090204806A1 (en)*2006-07-032009-08-13Kouichi KanemuraCertifying device, verifying device, verifying system, computer program and integrated circuit
US20110145586A1 (en)*2009-12-142011-06-16Nxp B.V.Integrated circuit and system for installing computer code thereon
US20110145919A1 (en)*2009-10-132011-06-16Dafca, Inc.Method and apparatus for ensuring consistent system configuration in secure applications
JP2012043438A (en)*2010-08-202012-03-01Fujitsu LtdMethod and system for validating device integrity
US8732444B2 (en)2009-02-182014-05-20Panasonic CorporationInformation processing device and information processing method
US10108168B2 (en)2014-06-012018-10-23Si-Ga Data Security (2014) Ltd.Industrial control system smart hardware monitoring
CN110096256A (en)*2019-04-162019-08-06苏州浪潮智能科技有限公司A kind of method and device using trusted root creation random value character device
US12348634B1 (en)*2023-12-272025-07-01University Of SharjahFramework for storage and verification of academic credentials on blockchain technology

Families Citing this family (28)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
WO2006100522A1 (en)*2005-03-222006-09-28Hewlett-Packard Development Company, L.P.Methods, devices and data structures for trusted data
KR101041543B1 (en)*2006-04-212011-06-17인터디지탈 테크날러지 코포레이션 Apparatus and method for performing trusted computing integrity measurement reports
US8082551B2 (en)*2006-10-302011-12-20Hewlett-Packard Development Company, L.P.System and method for sharing a trusted platform module
JP4890309B2 (en)*2007-03-192012-03-07株式会社リコー Information processing apparatus and information protection method
US8458460B2 (en)*2007-09-272013-06-04Intel CorporationDigest generation from instruction op-codes
KR101861607B1 (en)2008-01-182018-05-29인터디지탈 패튼 홀딩스, 인크Method and apparatus for enabling machine to machine communication
US8161285B2 (en)*2008-09-262012-04-17Microsoft CorporationProtocol-Independent remote attestation and sealing
CN100581107C (en)*2008-11-042010-01-13西安西电捷通无线网络通信有限公司 A Trusted Platform Verification Method Based on Ternary Peer Authentication (TePA)
KR101760451B1 (en)*2009-03-052017-07-24인터디지탈 패튼 홀딩스, 인크METHOD AND APPARATUS FOR H(e)NB INTEGRITY VERIFICATION AND VALIDATION
TW201129129A (en)2009-03-062011-08-16Interdigital Patent HoldingsPlatform validation and management of wireless devices
US8544092B2 (en)*2009-03-122013-09-24International Business Machines CorporationIntegrity verification using a peripheral device
WO2010113266A1 (en)2009-03-312010-10-07富士通株式会社Information processing device, start-up control method and start-up program thereof
EP2438511B1 (en)2010-03-222019-07-03LRDC Systems, LLCA method of identifying and protecting the integrity of a set of source data
GB2482652B (en)*2010-05-212016-08-24Hewlett Packard Development Co LpExtending integrity measurements in a trusted device using a policy register
JP5582909B2 (en)2010-07-292014-09-03キヤノン株式会社 Platform integrity verification system
EP2619701B1 (en)2010-09-222015-04-22International Business Machines CorporationAttesting use of an interactive component during a boot process
US8869264B2 (en)2010-10-012014-10-21International Business Machines CorporationAttesting a component of a system during a boot process
AU2011323225B2 (en)2010-11-052015-05-28Interdigital Patent Holdings, Inc.Device validation, distress indication, and remediation
DE112011103048B4 (en)*2010-11-182021-12-23International Business Machines Corporation A method of authenticating a variety of data processing systems
US9690941B2 (en)2011-05-172017-06-27Microsoft Technology Licensing, LlcPolicy bound key creation and re-wrap service
US9454379B2 (en)*2011-11-222016-09-27Intel CorporationCollaborative processor and system performance and power management
US9542568B2 (en)*2013-09-252017-01-10Max Planck Gesellschaft Zur Foerderung Der Wissenschaften E.V.Systems and methods for enforcing third party oversight of data anonymization
US10217498B2 (en)2016-09-122019-02-26Qualcomm IncorporatedTechniques for preventing tampering with PROM settings
JP2018093352A (en)*2016-12-012018-06-14株式会社ユビキタスInformation processing system, function incorporation method, information processing unit, information processing method, and information processing program
US11372970B2 (en)2019-03-122022-06-28Hewlett Packard Enterprise Development LpMulti-dimensional attestation
JP7337763B2 (en)*2020-09-112023-09-04株式会社東芝 Communication system, communication method and program
WO2022213072A1 (en)*2021-04-012022-10-06Cisco Technology, Inc.Verifying trust postures of heterogeneous confidential computing clusters
US12294614B2 (en)2021-04-012025-05-06Cisco Technology, Inc.Verifying trust postures of heterogeneous confidential computing clusters

Citations (10)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US20030226031A1 (en)*2001-11-222003-12-04Proudler Graeme JohnApparatus and method for creating a trusted environment
US20040193888A1 (en)*2003-03-312004-09-30Wiseman Willard M.Platform information for digital signatures
US20050021968A1 (en)*2003-06-252005-01-27Zimmer Vincent J.Method for performing a trusted firmware/bios update
US20050114682A1 (en)*2003-11-262005-05-26Zimmer Vincent J.Methods and apparatus for securely configuring a machine in a pre-operating system environment
US20050132031A1 (en)*2003-12-122005-06-16Reiner SailerMethod and system for measuring status and state of remotely executing programs
US20050216736A1 (en)*2004-03-242005-09-29Smith Ned MSystem and method for combining user and platform authentication in negotiated channel security protocols
US20060010326A1 (en)*2004-07-082006-01-12International Business Machines CorporationMethod for extending the CRTM in a trusted platform
US20060074600A1 (en)*2004-09-152006-04-06Sastry Manoj RMethod for providing integrity measurements with their respective time stamps
US20060133612A1 (en)*2004-12-212006-06-22Abedi Scott SSystem and method of preventing alteration of data on a wireless device
US7302698B1 (en)*1999-09-172007-11-27Hewlett-Packard Development Company, L.P.Operation of trusted state in computing platform

Family Cites Families (1)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US5828751A (en)*1996-04-081998-10-27Walker Asset Management Limited PartnershipMethod and apparatus for secure measurement certification

Patent Citations (11)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US7302698B1 (en)*1999-09-172007-11-27Hewlett-Packard Development Company, L.P.Operation of trusted state in computing platform
US20030226031A1 (en)*2001-11-222003-12-04Proudler Graeme JohnApparatus and method for creating a trusted environment
US20050223221A1 (en)*2001-11-222005-10-06Proudler Graeme JApparatus and method for creating a trusted environment
US20040193888A1 (en)*2003-03-312004-09-30Wiseman Willard M.Platform information for digital signatures
US20050021968A1 (en)*2003-06-252005-01-27Zimmer Vincent J.Method for performing a trusted firmware/bios update
US20050114682A1 (en)*2003-11-262005-05-26Zimmer Vincent J.Methods and apparatus for securely configuring a machine in a pre-operating system environment
US20050132031A1 (en)*2003-12-122005-06-16Reiner SailerMethod and system for measuring status and state of remotely executing programs
US20050216736A1 (en)*2004-03-242005-09-29Smith Ned MSystem and method for combining user and platform authentication in negotiated channel security protocols
US20060010326A1 (en)*2004-07-082006-01-12International Business Machines CorporationMethod for extending the CRTM in a trusted platform
US20060074600A1 (en)*2004-09-152006-04-06Sastry Manoj RMethod for providing integrity measurements with their respective time stamps
US20060133612A1 (en)*2004-12-212006-06-22Abedi Scott SSystem and method of preventing alteration of data on a wireless device

Cited By (22)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US7350228B2 (en)*2001-01-232008-03-25Portauthority Technologies Inc.Method for securing digital content
US20020099955A1 (en)*2001-01-232002-07-25Vidius Inc.Method for securing digital content
US20070226505A1 (en)*2006-03-272007-09-27Brickell Ernie FMethod of using signatures for measurement in a trusted computing environment
US8631507B2 (en)*2006-03-272014-01-14Intel CorporationMethod of using signatures for measurement in a trusted computing environment
US8296561B2 (en)*2006-07-032012-10-23Panasonic CorporationCertifying device, verifying device, verifying system, computer program and integrated circuit
US20090204806A1 (en)*2006-07-032009-08-13Kouichi KanemuraCertifying device, verifying device, verifying system, computer program and integrated circuit
WO2008026086A3 (en)*2006-08-312008-05-08IbmAttestation of computing platforms
US7958367B2 (en)2007-05-302011-06-07Hitachi, Ltd.Authentication system and apparatus
US20080301457A1 (en)*2007-05-302008-12-04Hitachi, Ltd.Authentication system and apparatus
US20090013181A1 (en)*2007-07-032009-01-08Electronics & Telecommunications Research InstituteMethod and attestation system for preventing attestation replay attack
US20090046745A1 (en)*2007-08-162009-02-19Electronics & Telecommunications Research InstituteApparatus for transmitting and receiving data with various data capacities at high speed
US8291402B2 (en)*2007-11-292012-10-16Red Hat, Inc.Using system fingerprints to accelerate package dependency resolution
US20090144719A1 (en)*2007-11-292009-06-04Jan PazdzioraUsing system fingerprints to accelerate package dependency resolution
US8732444B2 (en)2009-02-182014-05-20Panasonic CorporationInformation processing device and information processing method
US20110145919A1 (en)*2009-10-132011-06-16Dafca, Inc.Method and apparatus for ensuring consistent system configuration in secure applications
US20110145586A1 (en)*2009-12-142011-06-16Nxp B.V.Integrated circuit and system for installing computer code thereon
EP2372592A1 (en)*2009-12-142011-10-05Nxp B.V.integrated circuit and system for installing computer code thereon
US8751811B2 (en)2009-12-142014-06-10Nxp B.V.Integrated circuit and system for installing computer code thereon
JP2012043438A (en)*2010-08-202012-03-01Fujitsu LtdMethod and system for validating device integrity
US10108168B2 (en)2014-06-012018-10-23Si-Ga Data Security (2014) Ltd.Industrial control system smart hardware monitoring
CN110096256A (en)*2019-04-162019-08-06苏州浪潮智能科技有限公司A kind of method and device using trusted root creation random value character device
US12348634B1 (en)*2023-12-272025-07-01University Of SharjahFramework for storage and verification of academic credentials on blockchain technology

Also Published As

Publication numberPublication date
US7930563B2 (en)2011-04-19
US7752465B2 (en)2010-07-06
JP4144880B2 (en)2008-09-03
JP2005301550A (en)2005-10-27
US20090070573A1 (en)2009-03-12

Similar Documents

PublicationPublication DateTitle
US7930563B2 (en)Reliability platform configuration measurement, authentication, attestation and disclosure
US7565553B2 (en)Systems and methods for controlling access to data on a computer with a secure boot process
US9230129B1 (en)Software trusted computing base
US7818585B2 (en)Secure license management
KR101402542B1 (en)Persistent security system and method
JP4939851B2 (en) Information processing terminal, secure device, and state processing method
US11874926B2 (en)Measuring containers
TWI627554B (en)Methods for blocking unauthorized applications and apparatuses using the same
US20110314279A1 (en)Single-Use Authentication Methods for Accessing Encrypted Data
WO2016144498A1 (en)Device attestation through security hardened management agent
Yoshihama et al.WS-Attestation: Efficient and fine-grained remote attestation on web services
US10404689B2 (en)Password security
US11290471B2 (en)Cross-attestation of electronic devices
US7210034B2 (en)Distributed control of integrity measurement using a trusted fixed token
CN114021106B (en)Remote authentication method, device and system for credibility measurement
US20090025067A1 (en)Generic extensible pre-operating system cryptographic infrastructure
JP2016099837A (en)Information processing apparatus, server device, information processing system, control method and computer program
US7228432B2 (en)Method and apparatus for providing security for a computer system
WO2019235450A1 (en)Information processing device, information processing method, information processing program, and information processing system
Matsuda et al.Detection of the Silver Ticket for Seamless Single Sign-On Focusing on a Ticket Lifetime
CN109977665B (en)Cloud server starting process anti-theft and anti-tampering method based on TPCM
WO2025086129A1 (en)Methods and mechanisms for unified remote attestation for confidential applications in the cloud
CN115618362B (en) A computer system, access control method and storage medium
JP6562370B1 (en) Information processing apparatus, information processing method, information processing program, and information processing system
CN119740222A (en) A remote certification method and related device

Legal Events

DateCodeTitleDescription
ASAssignment

Owner name:INTERNATIONAL BUSINESS MACHINES CORPORATION, NEW Y

Free format text:ASSIGNMENT OF ASSIGNORS INTEREST;ASSIGNORS:EBRINGER, TIMOTHY D.;YOSHIHAMA, SACHIKO;MUNETOH, SEIJI;AND OTHERS;SIGNING DATES FROM 20050206 TO 20050425;REEL/FRAME:016315/0242

Owner name:INTERNATIONAL BUSINESS MACHINES CORPORATION, NEW Y

Free format text:ASSIGNMENT OF ASSIGNORS INTEREST;ASSIGNORS:EBRINGER, TIMOTHY D.;YOSHIHAMA, SACHIKO;MUNETOH, SEIJI;AND OTHERS;REEL/FRAME:016315/0242;SIGNING DATES FROM 20050206 TO 20050425

FEPPFee payment procedure

Free format text:PAYOR NUMBER ASSIGNED (ORIGINAL EVENT CODE: ASPN); ENTITY STATUS OF PATENT OWNER: LARGE ENTITY

REMIMaintenance fee reminder mailed
LAPSLapse for failure to pay maintenance fees
STCHInformation on status: patent discontinuation

Free format text:PATENT EXPIRED DUE TO NONPAYMENT OF MAINTENANCE FEES UNDER 37 CFR 1.362

FPLapsed due to failure to pay maintenance fee

Effective date:20140706


[8]ページ先頭

©2009-2025 Movatter.jp